options { directory "/var/cache/bind"; // TODO configurer proprement DNSSEC dnssec-enable no; dnssec-validation no; auth-nxdomain no; # conform to RFC1035 listen-on { 185.131.40.2; }; listen-on-v6 { 2a03:a0a0::2; }; blackhole { bogus-nets; }; };